EP1672511A2 - Informations-schutzsystem, dafür verwendetes speichermedium und hülle enthaltendes speichermedium - Google Patents

Informations-schutzsystem, dafür verwendetes speichermedium und hülle enthaltendes speichermedium Download PDF

Info

Publication number
EP1672511A2
EP1672511A2 EP04792427A EP04792427A EP1672511A2 EP 1672511 A2 EP1672511 A2 EP 1672511A2 EP 04792427 A EP04792427 A EP 04792427A EP 04792427 A EP04792427 A EP 04792427A EP 1672511 A2 EP1672511 A2 EP 1672511A2
Authority
EP
European Patent Office
Prior art keywords
storage
storage medium
information
protection system
external device
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Withdrawn
Application number
EP04792427A
Other languages
English (en)
French (fr)
Inventor
Takashi Shigetomi
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
IntelligentDisc Inc
Original Assignee
Shigetomi Takashi
IntelligentDisc Inc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shigetomi Takashi, IntelligentDisc Inc filed Critical Shigetomi Takashi
Priority claimed from PCT/JP2004/015199 external-priority patent/WO2005036302A1/ja
Publication of EP1672511A2 publication Critical patent/EP1672511A2/de
Withdrawn legal-status Critical Current

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F12/00Accessing, addressing or allocating within memory systems or architectures
    • G06F12/14Protection against unauthorised use of memory or access to memory
    • GPHYSICS
    • G11INFORMATION STORAGE
    • G11BINFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
    • G11B20/00Signal processing not specific to the method of recording or reproducing; Circuits therefor
    • G11B20/00086Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
    • G11B20/00137Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving measures which result in a restriction to contents recorded on or reproduced from a record carrier to authorised users
    • G11B20/00144Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving measures which result in a restriction to contents recorded on or reproduced from a record carrier to authorised users involving a user identifier, e.g. a unique customer ID
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F1/00Details not covered by groups G06F3/00 - G06F13/00 and G06F21/00
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/70Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
    • G06F21/78Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure storage of data
    • G06F21/80Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure storage of data in storage media based on magnetic or optical technology, e.g. disks with sectors
    • GPHYSICS
    • G11INFORMATION STORAGE
    • G11BINFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
    • G11B20/00Signal processing not specific to the method of recording or reproducing; Circuits therefor
    • G11B20/00086Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
    • GPHYSICS
    • G11INFORMATION STORAGE
    • G11BINFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
    • G11B20/00Signal processing not specific to the method of recording or reproducing; Circuits therefor
    • G11B20/00086Circuits for prevention of unauthorised reproduction or copying, e.g. piracy
    • G11B20/00681Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving measures which prevent a specific kind of data access
    • G11B20/00695Circuits for prevention of unauthorised reproduction or copying, e.g. piracy involving measures which prevent a specific kind of data access said measures preventing that data are read from the recording medium
    • GPHYSICS
    • G11INFORMATION STORAGE
    • G11BINFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
    • G11B20/00Signal processing not specific to the method of recording or reproducing; Circuits therefor
    • G11B20/10Digital recording or reproducing
    • GPHYSICS
    • G11INFORMATION STORAGE
    • G11BINFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
    • G11B23/00Record carriers not specific to the method of recording or reproducing; Accessories, e.g. containers, specially adapted for co-operation with the recording or reproducing apparatus ; Intermediate mediums; Apparatus or processes specially adapted for their manufacture
    • G11B23/0014Record carriers not specific to the method of recording or reproducing; Accessories, e.g. containers, specially adapted for co-operation with the recording or reproducing apparatus ; Intermediate mediums; Apparatus or processes specially adapted for their manufacture record carriers not specifically of filamentary or web form
    • G11B23/0021Record carriers not specific to the method of recording or reproducing; Accessories, e.g. containers, specially adapted for co-operation with the recording or reproducing apparatus ; Intermediate mediums; Apparatus or processes specially adapted for their manufacture record carriers not specifically of filamentary or web form discs
    • G11B23/0028Details
    • G11B23/0035Details means incorporated in the disc, e.g. hub, to enable its guiding, loading or driving
    • G11B23/0042Details means incorporated in the disc, e.g. hub, to enable its guiding, loading or driving with provision for auxiliary features
    • GPHYSICS
    • G11INFORMATION STORAGE
    • G11BINFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
    • G11B23/00Record carriers not specific to the method of recording or reproducing; Accessories, e.g. containers, specially adapted for co-operation with the recording or reproducing apparatus ; Intermediate mediums; Apparatus or processes specially adapted for their manufacture
    • G11B23/02Containers; Storing means both adapted to cooperate with the recording or reproducing means
    • G11B23/03Containers for flat record carriers
    • GPHYSICS
    • G11INFORMATION STORAGE
    • G11BINFORMATION STORAGE BASED ON RELATIVE MOVEMENT BETWEEN RECORD CARRIER AND TRANSDUCER
    • G11B7/00Recording or reproducing by optical means, e.g. recording using a thermal beam of optical radiation by modifying optical properties or the physical structure, reproducing using an optical beam at lower power by sensing optical properties; Record carriers therefor
    • G11B7/007Arrangement of the information on the record carrier, e.g. form of tracks, actual track shape, e.g. wobbled, or cross-section, e.g. v-shaped; Sequential information structures, e.g. sectoring or header formats within a track
    • G11B7/00736Auxiliary data, e.g. lead-in, lead-out, Power Calibration Area [PCA], Burst Cutting Area [BCA], control information

Definitions

  • the present invention relates to low cost and simple information protection system for preventing hackers from accessing and protecting data stored in a storage medium, a storage medium to be used therefor and a storage medium storage case.
  • HDDs Hard discs
  • a basic resident register network has recently been established, in which all local governments and the central government are integrated in a network and private information of all residents in any city, town or village are stored in a database so that such private information can be accessible from any location within the country.
  • Such basic resident register network enables each municipality to install a communication server by way of a firewall.
  • Existing basic resident management system can also be connected to the communication server. It is basically possible that the central and local government organizations can send or receive necessary information by interconnecting the communication server and servers in each municipality and the Municipality Information Center in Tokyo using a dedicated line.
  • any conventional network connected to internet cannot be completely free from illegal access by hackers even if a firewall may be provided.
  • an object of the present invention to provide a simple and low cost information protection system capable of preventing hackers from accessing and protecting data that are stored in individual storage medium, storage medium to be used therefor and storage medium storage (or accommodation) case.
  • the information protection system, the storage medium to be used therefor and the storage medium storage case according to the present invention have the following unique constructions.
  • the information protection system, the storage medium to be used therefor and the storage medium storage case according to the present invention have the following significant practical advantages:
  • the storage medium in which confidential information is stored actively controls the PCs and is protected by individual security programs installed in the PCs, thereby providing a further barrier for more reliable protection of the confidential information. It is to be noted herein that by simply changing a security program for each disc, it acts as an independent security program, thereby enabling one to easily develop programs. Moreover, it is possible to store a plurality of storage media in a storage medium storage case and to enable only a person to be certified as one of the particular persons who are previously registered is able to pick out the storage medium.
  • a warning is generated when he/she picks out the storage medium and moves it to a distant location outside the predetermined area and such warning is transmitted to a control or an administration center by way of a communication line, thereby providing control of the storage medium itself and reliable security. Additionally, if optical discs are used as the storage media, a large storage capacity can be obtained at a low cost and environmental pollution can be avoided when disposing them.
  • Fig. 1 illustrates a system configuration of one embodiment of the information protection system according to the present invention.
  • a service network in local government 100 comprises a basic resident register/family registration server, a tax/finance server, a basic system server and the like 11 that are connected to a large number of PCs 12 - 14, 15A, 15B, 16 and 17 for processing services shared by respective servers.
  • the PCs 12, 13 and 14 are terminals designated to provide services exclusively as a CS terminal, a basic resident register terminal and a finance terminal, respectively.
  • the PCs 15A, 15B, 16 and 17 are general purpose terminals to be used for various purposes other than the above services, wherein the PC 16 is a PC privately owned by a staff in the local government, the PC 17 is a PC connected to the service network in local government 100 and accessed for utilizing the LAN network from an outside through a public network.
  • a basic resident register network 200 Connected to the service network in local government 100 is a basic resident register network 200 that is connected to a highly secured virtually dedicated line network for the basic resident register network by way of a router, a firewall (F/W) and a hub (HUB) .
  • PCs connected to the service network in local government are not limited to PCs essentially dedicated to respective services but some other general purpose PCs including private PCs 16 may also be connected thereto for convenience reasons as mentioned hereinabove. It is general that special attentions to security are paid in the PCs designed for particular purposes but no or less attention is paid to other general purpose PCs such as the PCs 15A, 15B and 16, thereby increasing a risk to be a target for an ill-willed third party or a hacker. There encounters the same problem when gaining access from outside using the PC 17.
  • an optical disc (referred to as an intelligent disc or i-DISC below) 1A, 1B that is detachable to any PC is used as a storage medium rather than a disc built-in a PC.
  • An optical disc is advantages over any other type of storage media because of significantly low cost, large storage capacity and friendly to environment when disposing.
  • the intelligent disc 1A is not integrated with a drive and is used with a PC by loading in a drive mechanism equipped within the PC.
  • the intelligent disc 1B is an integrated intelligent disc including an integrated drive as access means to the disc.
  • the intelligent disc contains information such as private information or the like stored therein as well as a storage or memory portion for memorizing predetermined application programs for controlling the operation of the PC in which the optical disc is loaded.
  • the control means is to control the operation of the PC which acts as an external device and to which the optical disc is loaded. That is, an application program (security) for prohibiting any access to read/write the information stored in the optical disc is memorized for each optical disc.
  • Such program may be one for encrypting the information data at the time of storing in the storage portion in the optical disc (including encryption key and the like) and one for controlling access itself to the optical disc.
  • Information including confidential information such as private information or the like is stored in the intelligent disc and also the processed information data is also stored in such intelligent disc.
  • the intelligent disc is stored in the intelligent disc and also the processed information data is also stored in such intelligent disc.
  • Fig. 2 (A) and (B) illustrate a conventional system to be read out by the information stored in a storage medium at the PC side by a hacker who entered through internet and a system for preventing the information from being read out by the use of the intelligent disc according to the present invention, respectively.
  • Fig. 2 (A) it is normally difficult to enter a system comprising a plurality of PCs 10A to 10C each having a security program installed therein and connected to a LAN (i. e., Local Area Network).
  • a LAN i. e., Local Area Network
  • a security program Even if a security program is installed, a hacker may frequently enter through internet in many occasions. In such a case, a hacker may easily enter other PCs 10B and 10C connected to the LAN.
  • confidential information such as private information or the like stored in the server data 20 that these PCs utilize may be read out and leaked to outside.
  • the embodiment of the present invention as shown in Fig. 2 (B) employs a system configuration in which the above described intelligent disc 1 is loaded in each PC and the intelligent disc 1 is designed to store a particular program (a security program) . Accordingly, if it is designed to control the data read-out from the intelligent disc 1 using the program stored in the same intelligent disc 1, a hacker who was finally successful to enter through internet faces a further barrier which is very difficult to penetrate because of such special security program. Moreover, if a unique program is stored in each intelligent disc, even a hacker who may succeed to enter an intelligent disc of one PC needs to penetrate a barrier of another security program installed in another PC. It is the most difficult to read out data stored in all intelligent discs loaded in all PCs.
  • the contents (the data such as private information and the like stored in the intelligent disc 1) and the security programs stored in the same intelligent disc 1 cooperate with each other and the operation modes differ from disc to another disc, thereby enabling the intelligent disc to provide very high degree of security by itself.
  • the intelligent disc 1 itself is able to protect the contents, thereby providing unique and significant security as compared to a conventional system.
  • a simple security program to be installed in the intelligent disc is an electronic circuit provided with an identification code for enabling to mutually identify itself and a PC as an external device. It is possible to encrypt the information data stored in the intelligent disc so that the encrypted data can not be read out without the key information. It is also possible to set a special security program.
  • Fig. 3 illustrates a basic construction of the intelligent disc 1.
  • a pair of discs are attached to each other so that an information storage portion 101 for storing data such as private information or the like is formed on one surface of one disc, while provided on the surface of the other disc are a ROM 102 acting as a program storage portion for storing such information as a PC control program, a security program and the like, a RAM portion 103, an electronic circuit (CPU) 104 for reading out the program for the purpose of controlling a PC, an interface portion 105 for sending and receiving signals between the electronic circuit 104 and an external PC or a drive circuit and an antenna portion 106 for wireless signal transmission or reception to and from external devices.
  • the wireless signal transmission or reception may be made by, for example, a radio signal but may also be made by an optical signal.
  • the intelligent disc 1 comprises a disc main body and access is made by a drive that is provided at the PC side.
  • an intelligent disc unit by integrating a disc as shown in Fig. 1 and a drive.
  • the disc and the drive can be integrated effectively as an integrated unit, it is possible to provide a more unique unit.
  • Such intelligent disc unit may be systemized by inserting it into a PC card slot in a PC or by connecting to a USB (Universal Serial Bus).
  • the system according to the present invention effectively prevents a hacker from easily stealing confidential information from an intelligence disc connected to a PC that is then connected to a LAN forming a network even if he/she may succeed to enter the network through internet.
  • the particular embodiment controls the use of the intelligent disc or the intelligent disc unit.
  • a description will be made hereunder about an example of controlling the intelligent disc itself.
  • a plurality of intelligent discs to be used in a local government service network are controlled all together at a predetermined storage location. Access to such storage location is strictly controlled so that only authorized persons can get in and out of such location and get-ins/get-outs to and from such location are recorded.
  • a large number of intelligent discs are stored in a locked storage case and only persons who are registered in advance are permitted to take out such discs. They must be identified before taking out any one of such discs.
  • the identification is carried out by identification means provided in the storage case and they are permitted to take out any intelligent disc from the storage case only if they pass the identification. It is also possible to provide identification means in the intelligent disc itself so that it cannot be taken out unless they pass the identification. Any identification means including biometric identification such as fingerprints or the like, ID card or the like may be used for identifying individuals. In case of failure in identification, it is possible to generate a warning.
  • a person in charge who is permitted to take out any intelligent disc is appointed, more strict control of the intelligent discs can be made for improving security. That is, before starting the service, a person in charge takes out the necessary intelligent discs after identifying himself/herself and passes such discs to respective persons in a department or a section so that they can commence the services. At this time, it is also possible that the intelligent discs are provided with identification means for performing identification of the individual persons who engage in the services.
  • the storage case is provided with a display portion such as a liquid crystal display or the like so that the name of the identified person, the name given to the intelligent disc, a warning on the occasion of failure in identification and the like may be displayed thereon.
  • a display portion such as a liquid crystal display or the like so that the name of the identified person, the name given to the intelligent disc, a warning on the occasion of failure in identification and the like may be displayed thereon.
  • a warning is generated or a warning signal is sent to a security service company or the like by way of a communication network for preventive actions.
  • Such warning signal is sent by wireless means such as a high frequency radio signal, an optical signal or the like.
  • the intelligent disc is described as an optical disc in the above embodiment, it is of course possible to hold the disc in a cartridge.
  • various functions may be installed in the cartridge.
  • a wireless communication section for making wireless communication, an identification section, a display section, an audio output section (speaker) and the like as well as a battery section (preferably a rechargeable battery) for these functional sections may be installed in or on the cartridge.
  • Wireless communication of the wireless section is utilized for controlling the location of the cartridges (or the intelligent discs) so that a warning is generated when any intelligent disc is brought out of the predetermined area (or the service room) or notifies the situation to a security center by way or a wireless communication network.
  • the cartridge can store the intelligent disc, by adopting a flexible design to put in or take out such intelligent disc, it is possible to share the relatively expensive cartridge for storing a desired intelligent disc according to the need.
  • an intelligent disc is fixedly stored in a cartridge in an expensive system, while a cartridge can be commonly used for plural intelligent discs in a multipurpose system.
  • the antenna section 106 for making a weak wireless communication is on the intelligent disc side as shown in Fig. 3, it is possible to make a wireless communication with the cartridge for confirming justification of the intelligent disc by the communication between the cartridge side and the intelligent disc side.
  • the present invention should not necessarily be restricted to such particular case but is applicable to any case of preventing a hacker from trying to get access to and reading out the data stored in the storage medium connected to a PC by way of the PC operation.
  • the storage medium should not be limited to an optical disc but may be any storage medium having the similar construction.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Physics & Mathematics (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Software Systems (AREA)
  • Storage Device Security (AREA)
  • Signal Processing For Digital Recording And Reproducing (AREA)
EP04792427A 2003-10-10 2004-10-07 Informations-schutzsystem, dafür verwendetes speichermedium und hülle enthaltendes speichermedium Withdrawn EP1672511A2 (de)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
JP2003352110 2003-10-10
PCT/JP2004/015199 WO2005036302A1 (ja) 2003-10-10 2004-10-07 情報保護システム、それに使用する記憶媒体及び記憶媒体収納ケース

Publications (1)

Publication Number Publication Date
EP1672511A2 true EP1672511A2 (de) 2006-06-21

Family

ID=34431099

Family Applications (1)

Application Number Title Priority Date Filing Date
EP04792427A Withdrawn EP1672511A2 (de) 2003-10-10 2004-10-07 Informations-schutzsystem, dafür verwendetes speichermedium und hülle enthaltendes speichermedium

Country Status (6)

Country Link
US (1) US20080205228A1 (de)
EP (1) EP1672511A2 (de)
JP (1) JPWO2005036302A1 (de)
KR (1) KR20060115382A (de)
CN (1) CN100470510C (de)
EA (1) EA200600743A1 (de)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2009175790A (ja) * 2008-01-21 2009-08-06 Nec Corp コンテンツ資産管理システム、方法および制御プログラム

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0989497A1 (de) * 1997-09-25 2000-03-29 CANAL+ Société Anonyme Verfahren und Vorrichtung zum Schutz von aufgezeichneten digitalen Daten
CN1477630A (zh) * 1998-09-21 2004-02-25 日本胜利株式会社 信息记录方法与装置、重放装置、及信息保护方法

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
See references of WO2005036302A2 *

Also Published As

Publication number Publication date
US20080205228A1 (en) 2008-08-28
CN100470510C (zh) 2009-03-18
EA200600743A1 (ru) 2006-12-29
WO2005036302A2 (ja) 2005-04-21
KR20060115382A (ko) 2006-11-08
WO2005036302A3 (ja) 2005-07-14
CN1867903A (zh) 2006-11-22
JPWO2005036302A1 (ja) 2006-12-21
WO2005036302A9 (ja) 2005-09-01

Similar Documents

Publication Publication Date Title
EP0888677B1 (de) Authentifizierungsmethode und -system basierend auf einem periodischen challenge-response-protokoll
US8479013B2 (en) Secure portable data transport and storage system
US6292899B1 (en) Volatile key apparatus for safeguarding confidential data stored in a computer system memory
EP2038794B1 (de) Verfahren und einrichtung zum scannen von daten auf signaturen vor der speicherung in einer speicheranordnung
EP1228409B1 (de) Drahtloses zugangssicherungsverfahren für eine tragbare datenspeicherkassette
US6628198B2 (en) Security system for preventing a personal computer from being stolen or used by unauthorized people
CN102460458A (zh) 存储设备的远程访问控制
EP1805685A1 (de) Tragbares speichergerät und datenaustauschverfahren
CN109684866B (zh) 一种支持多用户数据保护的安全优盘系统
US20020042882A1 (en) Computer security system
CN102855451A (zh) 一种具有安全防失密的便携式电脑终端
JP2008108143A (ja) データ管理システム、データ管理方法、情報処理装置
US20060072760A1 (en) System and method to use a wireless network to protect data and equipment
US20180307870A1 (en) Process and Detachable Device for Using and Managing Encryption Keys
EP1672511A2 (de) Informations-schutzsystem, dafür verwendetes speichermedium und hülle enthaltendes speichermedium
KR100676086B1 (ko) 보안 데이터 저장 장치 및 그 장치의 접근 제어 방법
EP1130494A2 (de) Verteiltes kriptographisches Verfahren zur Sicherung von abnehmbaren Datenspeichermedien
WO2007099716A1 (ja) データ通信システムおよび可搬型メモリ
US20110298584A1 (en) Securing a cash safe with a circuit
KR200299271Y1 (ko) 통합 정보 보안 장치
JP5011214B2 (ja) 情報機器管理システム、情報処理装置、及びicカード
EP1239358A2 (de) Sicherheitssystem zur Verhinderung des Diebstahls und der Nutzung eines Personalcomputers durch unberechtigte Benutzer
Parker Cryptographic threat analysis
Longley Data Security
JP2003223417A (ja) 情報入出力システム、情報処理装置、及びコンピュータプログラム

Legal Events

Date Code Title Description
PUAI Public reference made under article 153(3) epc to a published international application that has entered the european phase

Free format text: ORIGINAL CODE: 0009012

17P Request for examination filed

Effective date: 20060413

AK Designated contracting states

Kind code of ref document: A2

Designated state(s): DE ES FR GB IT

RAP1 Party data changed (applicant data changed or rights of an application transferred)

Owner name: INTELLIGENTDISC, INC.

RIN1 Information on inventor provided before grant (corrected)

Inventor name: SHIGETOMI, TAKASHI

DAX Request for extension of the european patent (deleted)
RBV Designated contracting states (corrected)

Designated state(s): DE ES FR GB IT

STAA Information on the status of an ep patent application or granted ep patent

Free format text: STATUS: THE APPLICATION HAS BEEN WITHDRAWN

18W Application withdrawn

Effective date: 20080725